๐ฎ๐ฉ
hermawan
2026-06-23 20:15:18
(3 days ago)
[Wed Jun 24 03:15:13.652036 2026] [security2:error] [pid 941004:tid 140190338246336] [client 103.110 ...
show more
[Wed Jun 24 03:15:13.652036 2026] [security2:error] [pid 941004:tid 140190338246336] [client 103.110.101.130:46155] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan"] [unique_id "ajrpUY7tkWFsEHlXaPQqvwAARgA"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[941005] [296iajHaYM8] [ajrpUY7tkWFsEHlXaPQqvwAARgA] keep_alive=[1] [2026-06-24 03:15:13.652044] [R:ajrpUY7tkWFsEHlXaPQqvwAARgA] UA:'Mozilla/5.0 (Lin
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-12 18:58:55
(2 weeks ago)
[Sat Jun 13 01:58:52.374126 2026] [security2:error] [pid 253689:tid 140091832899264] [client 103.110 ...
show more
[Sat Jun 13 01:58:52.374126 2026] [security2:error] [pid 253689:tid 140091832899264] [client 103.110.101.130:37526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.google.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.google.go.id found within REQUEST_HEADERS:Referer: https://www.google.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561326-infografis-himbauan-waspada-suhu-udara-panas HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561326-infografis-himbauan-waspada-suhu-udara-panas"] [unique_id "aixW7Ng3bY_VahxUgnzDBAAAEAU"], referer https://www.google.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[253695] [7j5UEZOoScc] [aixW7Ng3bY_VahxUgnzDBAAAEAU] ke
...
show less
Email Spam
Hacking
๐ฉ๐ช
pltcldvlpr
2026-06-05 12:19:55
(3 weeks ago)
Bogus Useragent: 103.110.101.130 - - [05/Jun/2026:14:19:54 +0200] "GET /protocol?id=rp_16_33&offset= ...
show more
Bogus Useragent: 103.110.101.130 - - [05/Jun/2026:14:19:54 +0200] "GET /protocol?id=rp_16_33&offset=2000&seq=2041 HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; MSIE 6.0; Windows NT 5.01; Trident/5.1)" asn=150937 org="PT Neutron Mitra Nusantara" country=ID
...
show less
Bad Web Bot
Anonymous
2026-04-22 06:28:19
(2 months ago)
Automated bot traffic โ residential proxy, fake browser fingerprint. UA="Mozilla/5.0 (Windows NT 10. ...
show more
Automated bot traffic โ residential proxy, fake browser fingerprint. UA="Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
melroy89
2026-04-02 00:24:23
(2 months ago)
103.110.101.130 - - [02/Apr/2026:02:09:15 +0200] "GET /login HTTP/1.1" 200 1981 "-" "Mozilla/5.0 (W ...
show more
103.110.101.130 - - [02/Apr/2026:02:09:15 +0200] "GET /login HTTP/1.1" 200 1981 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.0.0 Safari/537.36" "kbin.melroy.org" 0.032
...
show less
DDoS Attack
๐ฉ๐ช
EGP Abuse Dept
2026-03-27 04:29:20
(2 months ago)
Scraping webshop URLs (www.badgehouder.nl), likely botnet drone
Bad Web Bot
Exploited Host
๐ฉ๐ช
Tizian Maxime Weigt
2025-07-25 04:49:54
(11 months ago)
Incoming DDoS to port 443 (L7 HTTPS Flood) Detected
DDoS Attack
๐ณ๐ฑ
exxos
2025-07-22 05:06:33
(11 months ago)
Signup bot
Web Spam
๐ฉ๐ช
Tizian Maxime Weigt
2025-07-21 19:17:00
(11 months ago)
Incoming DDoS to port 443 (L7 HTTPS Flood) Detected
DDoS Attack
๐ฉ๐ช
Tizian Maxime Weigt
2025-07-16 19:09:06
(11 months ago)
Incoming DDoS to port 443 (L7 HTTPS Flood) Detected
DDoS Attack
๐ซ๐ฎ
as211431.net
2025-07-16 17:45:53
(11 months ago)
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /user/register/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
Packets-Decreaser.NET
2025-07-15 17:53:56
(11 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐จ๐ฆ
TCP FAILED
2025-06-20 17:00:34
(1 year ago)
TCP Watch Auto Report: Detected a ddos attack and suspicious activity from this IP, indicating a pot ...
show more
TCP Watch Auto Report: Detected a ddos attack and suspicious activity from this IP, indicating a potential attack
show less
DDoS Attack
Hacking
IoT Targeted
๐ฉ๐ช
Packets-Decreaser.NET
2025-06-19 14:38:36
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
uira.live
2025-06-18 23:38:56
(1 year ago)
Malicious activity detected from 150937 IDNIC-NEUTRON-AS-ID PT Neutron Mitra Nusantara towards host ...
show more
Malicious activity detected from 150937 IDNIC-NEUTRON-AS-ID PT Neutron Mitra Nusantara towards host uira.live (GET HTTP/2) @ 2025-06-18T23:38:56Z (19 occurrences)
show less
DDoS Attack